Mozilla Browsers Multiple Vulnerabilities

High Nessus Plugin ID 14728


The remote Windows host contains a web browser that is affected by multiple vulnerabilities.


The remote host is using Mozilla and/or Firefox, a web browser.

The remote version of this software is vulnerable to several flaws that could allow an attacker to execute arbitrary code on the remote host, get access to content of the user clipboard or, perform a cross-domain cross-site scripting attack.

A remote attacker could exploit these issues by tricking a user into viewing a malicious web page.


Upgrade to Mozilla 1.7.3 / Firefox 0.10.0 or later.

Plugin Details

Severity: High

ID: 14728

File Name: mozilla_multiple_flaws.nasl

Version: $Revision: 1.23 $

Type: local

Agent: windows

Family: Windows

Published: 2004/09/15

Modified: 2013/04/02

Dependencies: 20862

Risk Information

Risk Factor: High


Base Score: 9.3

Temporal Score: 7.7

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Temporal Vector: CVSS2#E:F/RL:OF/RC:C

Vulnerability Information

CPE: cpe:/a:mozilla:mozilla, cpe:/a:mozilla:firefox, cpe:/a:mozilla:thunderbird, cpe:/a:netscape:navigator

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 2004/09/14

Vulnerability Publication Date: 2004/08/31

Reference Information

CVE: CVE-2004-0904, CVE-2004-0905, CVE-2004-0906, CVE-2004-0908

BID: 11194, 11192, 11169, 11171, 11177, 11179

OSVDB: 9965, 10524, 10525, 10559